Configure An Openvpn Server - Digi Connect IT Mini User Manual

Hide thumbs Also See for Connect IT Mini:
Table of Contents

Advertisement

Virtual Private Networks (VPN)
OpenVPN managed—The Connect IT Mini device creates the interface and then uses its
n
standard configuration to set up the connection (for example, its standard DHCP server
configuration).
Device only—IP addressing is controlled by the system, not by OpenVPN.
n
Additional OpenVPN information
For more information on OpenVPN, see these resources:
Bridging vs. routing
OpenVPN/Routing

Configure an OpenVPN server

Required configuration items
Enable the OpenVPN server.
n
The OpenVPN server is enabled by default.
The mode used by the OpenVPN server, one of:
n
TUN (OpenVPN managed)—Also known as routing mode. Each OpenVPN client is assigned
l
a different IP subnet from the OpenVPN server and other OpenVPN clients. OpenVPN
clients use Network Address Translation (NAT) to route traffic from devices connected on
its LAN interfaces to the OpenVPN server.
TAP - OpenVPN managed—Also know as bridging mode. A more advanced implementation
l
of OpenVPN. The Connect IT Mini device creates an OpenVPN interface and uses standard
interface configuration (for example, a standard DHCP server configuration).
TAP - Device only—An alternate form of OpenVPN bridging mode, in which the device,
l
rather than OpenVPN, controls the interface configuration. If this method is is, the
OpenVPN server must be included as a device in either an interface or a bridge.
The firewall zone to be used by the OpenVPN server.
n
The IP network and subnet mask of the OpenVPN server.
n
The server's Certificate authority (CA) certificate, and public, private and Diffie-Hellman (DH)
n
keys.
An OpenVPN authentication group and an OpenVPN user.
n
Determine the method of certificate management:
n
Certificates managed by the server.
l
Certificates created externally and added to the server.
l
If certificates are created and added to the server, determine the level of authentication:
n
Certificate authentication only.
l
Username and password authentication only.
l
Certificate and username and password authentication.
l
If username and password authentication is used, you must create an OpenVPN authentication
group and user. See
Digi Connect IT® Mini User Guide
Configure an OpenVPN Authentication Group and User
OpenVPN
for instructions.
218

Advertisement

Table of Contents
loading

Table of Contents